[Ksplice][Fedora-16-updates] New updates available via Ksplice (FEDORA-2012-1497)

Sasha Levin sasha.levin at oracle.com
Fri Feb 10 14:51:05 PST 2012


Synopsis: FEDORA-2012-1497 can now be patched using Ksplice
CVEs: CVE-2011-4086

Systems running Fedora 16 can now use Ksplice to patch against the
latest Fedora security update, FEDORA-2012-1497.

INSTALLING THE UPDATES

We recommend that all users of Ksplice Uptrack on Fedora 16 install
these updates.  You can install these updates by running:

# /usr/sbin/uptrack-upgrade -y

On systems that have "autoinstall = yes" in /etc/uptrack/uptrack.conf,
these updates will be installed automatically and you do not need to
take any additional action.


DESCRIPTION

* CVE-2011-4086: Denial of service in journaling block device.

The journal block device assumed that a buffer marked as unwritten
or delay could be live without checking if the buffer was mapped.

An unprivileged local user could use this flaw to crash the system.

SUPPORT

Ksplice support is available at ksplice-support_ww at oracle.com.




More information about the Ksplice-Fedora-16-Updates mailing list